• calcopiritus@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    16 hours ago

    Because then you can’t change your password. Since you would have to decrypt all the hard drives that use windows with that account, and then encrypt them again with the new one.

    This also means that if you forget your password you are fucked.

    • michaelmrose@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      15 hours ago

      Typically an actual key is effectively just a very long pseaudorandom binary blob and the passphrase is just used to unlock the actual key. This means you can add a new key just by encrypting the actual key with the new passphrase